alibabacloud-cfw-exposure-detectionQuery and analyze Alibaba Cloud public network exposure, identify unnecessary exposed assets and ports, assess exposure risks, and generate remediation recom...
Install via ClawdBot CLI:
clawdbot install sdk-team/alibabacloud-cfw-exposure-detectionGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Sends data to undocumented external endpoint (potential exfiltration)
POST → https://cloudfw.cn-hangzhou.aliyuncs.com/Accesses system directories or attempts privilege escalation
sudo mvCalls external URL not in known-safe list
https://ram.console.aliyun.com/manage/akAI Analysis
The skill's external API calls (cloudfw.cn-hangzhou.aliyuncs.com) are consistent with its stated purpose of querying Alibaba Cloud Firewall data and are directed to the official Alibaba Cloud service endpoint. The 'sudo mv' command is likely part of CLI tool installation/configuration, not privilege escalation. No evidence of credential harvesting, data exfiltration to unauthorized servers, or hidden malicious instructions exists.
Generated Jul 16, 2026
Security teams need to regularly audit their public IP addresses to find any exposed assets or ports that shouldn't be accessible from the internet. This skill queries Alibaba Cloud Firewall API to list all public IPs, detect exposed ports and services, and flag high-risk exposures for remediation.
When new cloud resources are provisioned, they might accidentally be exposed to the internet. This skill can detect exposures discovered in the last 7 days, allowing teams to quickly identify and fix unintended public access.
Even if some assets are exposed, they may be protected by Alibaba Cloud Firewall. This skill checks the protection status of exposed assets to ensure firewall coverage, helping identify unprotected public endpoints.
Exposed assets with known vulnerabilities are high risk. This skill cross-references exposure data with vulnerability protection and attack events to identify critical risks that require immediate patching or access restriction.
Offer periodic public network exposure assessments for clients using Alibaba Cloud. Generate reports on exposed IPs, ports, risk levels, and remediation recommendations to help clients improve their cloud security posture.
Provide an automated tool for regulatory compliance (e.g., SOC2, ISO27001) that continuously monitors public exposure and generates evidence of security controls. Charge per cloud account per month.
Integrate exposure detection results into existing IT ticketing or remediation workflows (e.g., Jira, ServiceNow). Automatically create tickets for exposed assets, enabling quick action. Revenue from integration licensing or per-ticket fees.
💬 Integration Tip
Set up a cron job to run the detection workflow daily and send results to a Slack channel or email for continuous monitoring. For immediate response, integrate with webhooks to trigger alerts via PagerDuty or Opsgenie.
Scored Jul 16, 2026
Audited Apr 16, 2026 · audit v1.0
Cloudinary — manage images/videos, upload, transform, and search assets via REST API
提供微软产品信息、价格、订阅、技术支持及企业解决方案相关咨询与帮助。
DataWorks metadata Skill for Alibaba Cloud — browse Data Map metadata and perform non-destructive writes via Aliyun CLI. READ scope: list/get catalogs, datab...
Alibaba Cloud STS (alibabacloud.com). Use this skill for ANY Alibaba Cloud STS request — searching and reading data. Whenever a task involves Alibaba Cloud S...
上传雅思阅读复盘文件到服务器,支持 token 模式(进个人主页)和匿名模式。当用户想要上传已有的复盘 JSON、查看个人复盘仪表板时使用。触发词:上传复盘、上传复盘文件、sync review、upload review、查看我的复盘记录、我的仪表板、dashboard、tuyaya 上传、批量同步。
Check Point pioneered stateful firewall technology, providing enterprise network, cloud, and mobile security with hardware, software, and SaaS solutions glob...